Friday, October 9, 2026
30.7 C
Jakarta

Who Needs a Financial Audit in Indonesia?

Who needs an audit in Indonesia?

In Indonesia, the requirement for a financial statement audit is determined by specific legal thresholds based on company size, revenue, and assets.

These thresholds are outlined in Article 68 of Company Law No. 40 of 2007, which mandates that certain types of entities must have their financial statements audited by a registered public accountant.

The primary criteria for mandatory audits include:

  1. Revenue and Asset Thresholds
    Companies with total assets exceeding IDR 50 billion (approximately USD 3.2 million) or annual revenue surpassing IDR 50 billion are legally obligated to undergo an audit. These thresholds ensure that larger businesses, which have a greater impact on the economy, maintain transparency and accountability in their financial reporting.
  2. Public Companies
    Publicly listed companies, regardless of their size or revenue, must have their financial statements audited. This requirement is reinforced by the Capital Markets Law, which aims to protect investors and maintain market integrity. Public companies must also submit their audited financial statements to the Financial Services Authority (OJK) within three months of the fiscal year-end.
  3. Companies Managing Public Funds
    Entities that collect or manage public funds—such as banks, insurance companies, and pension funds—are subject to mandatory audits. This is to ensure the safety and security of public investments and to maintain trust in the financial system.
  4. State-Owned Enterprises (BUMN/BUMD)
    State-owned enterprises, which play a significant role in Indonesia’s economy, are required to undergo annual audits. This ensures that public funds are managed responsibly and in alignment with national interests.
  5. Companies Issuing Debt Instruments
    Businesses that issue debt securities or acknowledgments of indebtedness to the public must also comply with audit requirements. This is to assure creditors and investors about the company’s financial stability.

These mandatory audit requirements are designed to uphold Indonesia’s commitment to good corporate governance, financial transparency, and regulatory compliance. Failure to comply can result in severe penalties, including fines and legal sanctions.

Exemptions and Exceptions

While the above criteria capture a significant portion of businesses, there are exemptions and exceptions for smaller entities that may not meet the thresholds for mandatory audits. These include:

  1. Small and Medium Enterprises (SMEs)
    SMEs with total assets below IDR 25 billion and annual revenue under IDR 50 billion are generally exempt from mandatory audits. This exemption recognizes the resource constraints faced by smaller businesses and aims to reduce their regulatory burden.
  2. Non-Public Companies
    Private companies that do not manage public funds, issue debt instruments, or exceed the asset/revenue thresholds are not required to undergo audits. However, many such companies voluntarily opt for audits to enhance their credibility with stakeholders.
  3. Recent Regulatory Changes (2025 Updates)
    Indonesia is introducing significant updates to its auditing framework in 2025, including the mandatory annual legal audit requirement for all legal entities. This new regulation, part of a draft Presidential Regulation, aims to strengthen compliance and governance across the board.

    • Certified Legal Auditors: Entities must appoint certified auditors to conduct comprehensive audits, including planning, data collection, and reporting.
    • Sanctions for Non-Compliance: Businesses that fail to comply with the new requirements may face penalties, emphasizing the importance of adherence.

Additionally, the implementation of Global Internal Audit Standards (GIAS) in 2025 will further elevate Indonesia’s auditing practices. The GIAS framework focuses on governance, risk management, and compliance (GRC), aligning Indonesian standards with international best practices.

Key Steps in the Audit Process

In Indonesia, the audit journey unfolds in several key phases—from pre-audit preparation through risk assessment and planning to the execution and reporting of findings. Each step plays a vital role in maintaining the financial integrity and accountability of companies.

Pre-Audit Preparation

Before the audit officially commences, companies must gather all pertinent documents, including financial statements, ledgers, and tax reports. For organizations with subsidiary operations, preparing consolidated financial statements by the Indonesia Financial Accounting Standards is essential.

Notably, parent companies might be exempt from this requirement under specific conditions—such as when they are wholly or partially owned subsidiaries and no objections have been raised regarding their financial disclosures.

Additionally, companies must be aware of crucial submission deadlines, such as filing annual financial statements within four months after the close of the financial year, which are instrumental for computing corporate income tax returns.

In cases where companies undergo a tax audit, there is a strict one-month rule to provide any requested documents. Failure to comply within this timeframe can lead to tax liabilities being assessed based on deemed profits, underscoring the importance of comprehensive and timely document preparation.

Risk Assessment and Planning

Once the necessary documentation is in order, the audit process advances to risk assessment and planning. Auditors begin by identifying potential risk areas, evaluating the company’s internal control systems, and determining vulnerabilities that could impact the accuracy of financial records. This stage is crucial not only for highlighting areas susceptible to error or fraud but also for tailoring the audit approach to address industry-specific challenges.

For instance, sectors such as banking and insurance, which inherently carry higher operational risks, may warrant a more detailed and rigorous assessment. By mapping out these risks early on, auditors can allocate resources more effectively and design procedures that target the areas most likely to present issues during the audit.

Execution and Reporting: A Step-by-Step Breakdown

The final phase of the audit process is meticulously structured to ensure a thorough examination and transparent communication of findings. Here’s a detailed, step-by-step outline of how execution and reporting typically unfold:

Step 1: Fieldwork Planning and Coordination
Before actual fieldwork begins, auditors finalize their plans by scheduling visits, coordinating access to documents, and communicating with management. This preparatory step ensures that the audit team has clear objectives and a well-organized timeline for evidence gathering.

Step 2: Evidence Collection
Auditors dive into the financial records by reviewing transactions, examining detailed ledger entries, and collecting supporting documents such as tax filings, invoices, and receipts. This phase is critical to ensure that all pertinent information is available for scrutiny.

Step 3: Transaction Testing and Internal Controls Evaluation
In this stage, auditors select samples of transactions to test their validity and accuracy. They rigorously evaluate the company’s internal control systems to identify any gaps or weaknesses that might affect the reliability of the financial statements.

Step 4: Compilation and Organization of Documentation
Once evidence is collected, it is systematically organized and documented. This meticulous record-keeping is essential, as it forms the backbone of the audit and supports the findings that will be reported.

Step 5: Preliminary Findings and Management Discussion
After thorough analysis, auditors prepare an initial set of findings highlighting any discrepancies or areas of concern. A preliminary discussion with management is often conducted to clarify these issues and to gather additional insights that may influence the final report.

Step 6: Drafting the Audit Report
With evidence and preliminary findings in hand, auditors draft a comprehensive report. This document details the methodologies used, key observations, any identified inefficiencies, and recommendations for improvement. The draft report serves as a basis for further discussion and validation.

Step 7: Closing Conference
A formal closing meeting is then held with company management to review the draft report. This conference provides an opportunity for management to respond, present further supporting documentation, and clarify any contested points. It’s a critical forum for ensuring that both parties are aligned before finalization.

Step 8: Final Report Submission
Incorporating feedback from the closing conference, auditors finalize the report. The completed audit report is then submitted to the relevant stakeholders, which may include regulatory bodies, investors, and company leadership. The final report not only confirms compliance but also outlines actionable recommendations for enhanced financial management.

Step 9: Post-Audit Follow-Up
In cases where disputes remain or further clarification is needed, additional discussions may be arranged. Companies might engage with specialized teams, such as the Quality Tax Audits and Tax Assessments Assurance Team (QAT), to resolve any lingering issues and ensure that all adjustments are thoroughly justified.

Consequences of Non-Compliance

Non-compliance carries hefty financial penalties. For instance, companies that fall short of Indonesia’s audit and tax mandates may incur monthly interest penalties ranging from 2 percent to as much as 48 percent on overdue amounts. In more severe cases, particularly where false or misleading tax and accounting documents are involved, individuals may even face imprisonment.

To enforce compliance, the Directorate General of Taxes (DGT) can initiate a series of escalating measures. Initially, a warning letter is issued if overdue tax is not settled within seven days past the due date. This can quickly escalate to the issuance of a distress warrant if the deficiency remains unresolved within 21 days, followed by a confiscation order if the situation is not remedied within 48 hours. Persistent non-compliance can ultimately lead to the public auctioning of confiscated assets, underscoring the severity of the legal consequences.

Beyond immediate legal and financial consequences, non-compliance can severely damage a company’s reputation. Stakeholders—ranging from investors and financial institutions to business partners—rely on a company’s commitment to regulatory standards as a key indicator of its operational reliability and long-term viability.

Ensure Compliance with Expert Audit Assistance

Work with our experienced consultants at MAP Resources Indonesia to ensure your business stays compliant with the latest regulations. Contact us today for expert guidance and tailored audit solutions.

Popular News This Week

Severance Pay In Indonesia: What Foreign Employers Must Budget Before Terminating Staff

Severance pay in Indonesia depends on the employee's employment...

Employee Leave Indonesia: Annual Leave, Sick Leave, and Employer Obligations (2026)

Indonesia’s labor law imposes mandatory leave entitlements that employers...

THR In Indonesia: Employer Rules On Religious Holiday Allowance

The Religious Holiday Allowance, or Tunjangan Hari Raya (THR),...

Working Hours And Overtime In Indonesia: Compliance Rules For Employers

Indonesia’s labor laws set strict parameters for working hours...

The Role of a Commissioner in an Indonesian Company: A Guide for Foreign Investors

Indonesia’s corporate governance framework is structured under a two-tier...

Related Articles

Popular Categories